# Exploit Title: Wordpress White-Label Framework XSS # Google Dork: inurl:/wp-content/themes/whitelabel-framework/inc/form-sharebymail_iframe.php # Date: 7 September 2015 # Exploit Author: Outlasted # Software Link: wordpress.com / http://whitelabelframework.com/ # Version: 2.0.6 #Greetz to: TeaMp0isoN ===================================================== Vulnerable url: /wp-content/themes/whitelabel-framework/inc/form-sharebymail_iframe.php ===================================================== How to exploit? ---------------------------------------------------------------------------------------------------------- Enter your XSS payload in all forms and watch the magic.